A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'.

zetlyn/cve-nvd vulnerability cve CVE-2020-0796 cpe cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:arm64:* cpe cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x64:* cpe cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x86:* cpe cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:arm64:* cpe cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x64:* cpe cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x86:* cpe cpe:2.3:o:microsoft:windows_server_1903:-:*:*:*:*:*:x64:* cpe cpe:2.3:o:microsoft:windows_server_1909:-:*:*:*:*:*:x64:* known 2020-03-12

https://nvd.nist.gov/vuln/detail/CVE-2020-0796

Properties

cvss10
receipt
Source
NVD
Its words
10.0
Read by
field:cve.metrics.cvssMetricV31[].cvssData.baseScore
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Windows 10 Version 1903 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1903 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1909 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "cisaActionDue": "2022-08-10",
    "cisaExploitAdd": "2022-02-10",
    "cisaRequiredAction": "Apply updates per vendor instructions.",
    "cisaVulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability",
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9E1ED169-6F03-4BD5-B227-5FA54DB40AD7",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5C5B5180-1E12-45C2-8275-B9E528955307",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "B6A0DB01-49CB-4445-AFE8-57C2186857BA",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9285A9B5-4759-43E7-9589-CDBCA7100605",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "0D77EA14-F61D-4B9E-A385-70B88C482116",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "1A6FC9EE-D486-4AFE-A20E-4278468A1779",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "FFE3495D-291C-46B6-B758-23E16A53A7C3",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "11E7F8F0-4FA8-4AA6-92A5-860E77AC933D",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'."
      },
      {
        "lang": "es",
        "value": "Existe una vulnerabilidad de ejecución de código remota en la manera en que el protocolo Microsoft Server Message Block (SMBv3) versión 3.1.1, maneja determinadas peticiones, también se conoce como ''Windows SMBv3 Client/Server Remote Code Execution Vulnerability\"."
      }
    ],
    "id": "CVE-2020-0796",
    "lastModified": "2026-10-01T20:17:17.727",
    "metrics": {
      "cvssMetricV2": [
        {
          "acInsufInfo": false,
          "baseSeverity": "HIGH",
          "cvssData": {
            "accessComplexity": "LOW",
            "accessVector": "NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "PARTIAL",
            "baseScore": 7.5,
            "confidentialityImpact": "PARTIAL",
            "integrityImpact": "PARTIAL",
            "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
            "version": "2.0"
          },
          "exploitabilityScore": 10.0,
          "impactScore": 6.4,
          "obtainAllPrivilege": false,
          "obtainOtherPrivilege": false,
          "obtainUserPrivilege": false,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "userInteractionRequired": false
        }
      ],
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2020-0796",
            "options": [
              {
                "exploitation": "active"
              },
              {
                "automatable": "yes"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-08-12T03:55:42.606576Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2020-03-12T16:15:15.627",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0796"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "nvd@nist.gov",
        "type": "Primary"
      },
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "type": "Secondary"
      }
    ]
  }
}
productWindows 10 Version 1903 for 32-bit Systems
receipt
Source
NVD
Its words
Windows 10 Version 1903 for 32-bit Systems
Read by
field:cve.affected[].affectedData[].product
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Windows 10 Version 1903 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1903 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1909 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "cisaActionDue": "2022-08-10",
    "cisaExploitAdd": "2022-02-10",
    "cisaRequiredAction": "Apply updates per vendor instructions.",
    "cisaVulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability",
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9E1ED169-6F03-4BD5-B227-5FA54DB40AD7",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5C5B5180-1E12-45C2-8275-B9E528955307",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "B6A0DB01-49CB-4445-AFE8-57C2186857BA",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9285A9B5-4759-43E7-9589-CDBCA7100605",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "0D77EA14-F61D-4B9E-A385-70B88C482116",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "1A6FC9EE-D486-4AFE-A20E-4278468A1779",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "FFE3495D-291C-46B6-B758-23E16A53A7C3",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "11E7F8F0-4FA8-4AA6-92A5-860E77AC933D",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'."
      },
      {
        "lang": "es",
        "value": "Existe una vulnerabilidad de ejecución de código remota en la manera en que el protocolo Microsoft Server Message Block (SMBv3) versión 3.1.1, maneja determinadas peticiones, también se conoce como ''Windows SMBv3 Client/Server Remote Code Execution Vulnerability\"."
      }
    ],
    "id": "CVE-2020-0796",
    "lastModified": "2026-10-01T20:17:17.727",
    "metrics": {
      "cvssMetricV2": [
        {
          "acInsufInfo": false,
          "baseSeverity": "HIGH",
          "cvssData": {
            "accessComplexity": "LOW",
            "accessVector": "NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "PARTIAL",
            "baseScore": 7.5,
            "confidentialityImpact": "PARTIAL",
            "integrityImpact": "PARTIAL",
            "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
            "version": "2.0"
          },
          "exploitabilityScore": 10.0,
          "impactScore": 6.4,
          "obtainAllPrivilege": false,
          "obtainOtherPrivilege": false,
          "obtainUserPrivilege": false,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "userInteractionRequired": false
        }
      ],
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2020-0796",
            "options": [
              {
                "exploitation": "active"
              },
              {
                "automatable": "yes"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-08-12T03:55:42.606576Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2020-03-12T16:15:15.627",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0796"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "nvd@nist.gov",
        "type": "Primary"
      },
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "type": "Secondary"
      }
    ]
  }
}
statusAnalyzed
receipt
Source
NVD
Its words
Analyzed
Read by
field:cve.vulnStatus
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Windows 10 Version 1903 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1903 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1909 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "cisaActionDue": "2022-08-10",
    "cisaExploitAdd": "2022-02-10",
    "cisaRequiredAction": "Apply updates per vendor instructions.",
    "cisaVulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability",
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9E1ED169-6F03-4BD5-B227-5FA54DB40AD7",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5C5B5180-1E12-45C2-8275-B9E528955307",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "B6A0DB01-49CB-4445-AFE8-57C2186857BA",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9285A9B5-4759-43E7-9589-CDBCA7100605",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "0D77EA14-F61D-4B9E-A385-70B88C482116",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "1A6FC9EE-D486-4AFE-A20E-4278468A1779",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "FFE3495D-291C-46B6-B758-23E16A53A7C3",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "11E7F8F0-4FA8-4AA6-92A5-860E77AC933D",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'."
      },
      {
        "lang": "es",
        "value": "Existe una vulnerabilidad de ejecución de código remota en la manera en que el protocolo Microsoft Server Message Block (SMBv3) versión 3.1.1, maneja determinadas peticiones, también se conoce como ''Windows SMBv3 Client/Server Remote Code Execution Vulnerability\"."
      }
    ],
    "id": "CVE-2020-0796",
    "lastModified": "2026-10-01T20:17:17.727",
    "metrics": {
      "cvssMetricV2": [
        {
          "acInsufInfo": false,
          "baseSeverity": "HIGH",
          "cvssData": {
            "accessComplexity": "LOW",
            "accessVector": "NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "PARTIAL",
            "baseScore": 7.5,
            "confidentialityImpact": "PARTIAL",
            "integrityImpact": "PARTIAL",
            "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
            "version": "2.0"
          },
          "exploitabilityScore": 10.0,
          "impactScore": 6.4,
          "obtainAllPrivilege": false,
          "obtainOtherPrivilege": false,
          "obtainUserPrivilege": false,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "userInteractionRequired": false
        }
      ],
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2020-0796",
            "options": [
              {
                "exploitation": "active"
              },
              {
                "automatable": "yes"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-08-12T03:55:42.606576Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2020-03-12T16:15:15.627",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0796"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "nvd@nist.gov",
        "type": "Primary"
      },
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "type": "Secondary"
      }
    ]
  }
}
vendorMicrosoft
receipt
Source
NVD
Its words
Microsoft
Read by
field:cve.affected[].affectedData[].vendor
Said since
2026-10-02 12:00 UTC
Last answered
2026-10-04 18:16 UTC
Original
open at the source
What the source handed over
{
  "cve": {
    "affected": [
      {
        "affectedData": [
          {
            "product": "Windows 10 Version 1903 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1903 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1903 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for 32-bit Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for x64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows 10 Version 1909 for ARM64-based Systems",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          },
          {
            "product": "Windows Server, version 1909 (Server Core installation)",
            "vendor": "Microsoft",
            "versions": [
              {
                "status": "affected",
                "version": "unspecified"
              }
            ]
          }
        ],
        "source": "secure@microsoft.com"
      }
    ],
    "cisaActionDue": "2022-08-10",
    "cisaExploitAdd": "2022-02-10",
    "cisaRequiredAction": "Apply updates per vendor instructions.",
    "cisaVulnerabilityName": "Microsoft SMBv3 Remote Code Execution Vulnerability",
    "configurations": [
      {
        "nodes": [
          {
            "cpeMatch": [
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9E1ED169-6F03-4BD5-B227-5FA54DB40AD7",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "5C5B5180-1E12-45C2-8275-B9E528955307",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1903:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "B6A0DB01-49CB-4445-AFE8-57C2186857BA",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:arm64:*",
                "matchCriteriaId": "9285A9B5-4759-43E7-9589-CDBCA7100605",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "0D77EA14-F61D-4B9E-A385-70B88C482116",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:x86:*",
                "matchCriteriaId": "1A6FC9EE-D486-4AFE-A20E-4278468A1779",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1903:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "FFE3495D-291C-46B6-B758-23E16A53A7C3",
                "vulnerable": true
              },
              {
                "criteria": "cpe:2.3:o:microsoft:windows_server_1909:-:*:*:*:*:*:x64:*",
                "matchCriteriaId": "11E7F8F0-4FA8-4AA6-92A5-860E77AC933D",
                "vulnerable": true
              }
            ],
            "negate": false,
            "operator": "OR"
          }
        ]
      }
    ],
    "cveTags": [],
    "descriptions": [
      {
        "lang": "en",
        "value": "A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'."
      },
      {
        "lang": "es",
        "value": "Existe una vulnerabilidad de ejecución de código remota en la manera en que el protocolo Microsoft Server Message Block (SMBv3) versión 3.1.1, maneja determinadas peticiones, también se conoce como ''Windows SMBv3 Client/Server Remote Code Execution Vulnerability\"."
      }
    ],
    "id": "CVE-2020-0796",
    "lastModified": "2026-10-01T20:17:17.727",
    "metrics": {
      "cvssMetricV2": [
        {
          "acInsufInfo": false,
          "baseSeverity": "HIGH",
          "cvssData": {
            "accessComplexity": "LOW",
            "accessVector": "NETWORK",
            "authentication": "NONE",
            "availabilityImpact": "PARTIAL",
            "baseScore": 7.5,
            "confidentialityImpact": "PARTIAL",
            "integrityImpact": "PARTIAL",
            "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
            "version": "2.0"
          },
          "exploitabilityScore": 10.0,
          "impactScore": 6.4,
          "obtainAllPrivilege": false,
          "obtainOtherPrivilege": false,
          "obtainUserPrivilege": false,
          "source": "nvd@nist.gov",
          "type": "Primary",
          "userInteractionRequired": false
        }
      ],
      "cvssMetricV31": [
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "nvd@nist.gov",
          "type": "Primary"
        },
        {
          "cvssData": {
            "attackComplexity": "LOW",
            "attackVector": "NETWORK",
            "availabilityImpact": "HIGH",
            "baseScore": 10.0,
            "baseSeverity": "CRITICAL",
            "confidentialityImpact": "HIGH",
            "integrityImpact": "HIGH",
            "privilegesRequired": "NONE",
            "scope": "CHANGED",
            "userInteraction": "NONE",
            "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H",
            "version": "3.1"
          },
          "exploitabilityScore": 3.9,
          "impactScore": 6.0,
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "type": "Secondary"
        }
      ],
      "ssvcV203": [
        {
          "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
          "ssvcData": {
            "id": "CVE-2020-0796",
            "options": [
              {
                "exploitation": "active"
              },
              {
                "automatable": "yes"
              },
              {
                "technicalImpact": "total"
              }
            ],
            "role": "CISA Coordinator",
            "timestamp": "2026-08-12T03:55:42.606576Z",
            "version": "2.0.3"
          }
        }
      ]
    },
    "published": "2020-03-12T16:15:15.627",
    "references": [
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "secure@microsoft.com",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156731/CoronaBlue-SMBGhost-Microsoft-Windows-10-SMB-3.1.1-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156732/Microsoft-Windows-SMB-3.1.1-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/156980/Microsoft-Windows-10-SMB-3.1.1-Local-Privilege-Escalation.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Exploit",
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157110/SMBv3-Compression-Buffer-Overflow.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/157901/Microsoft-Windows-SMBGhost-Remote-Code-Execution.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Third Party Advisory",
          "VDB Entry"
        ],
        "url": "http://packetstormsecurity.com/files/158054/SMBleed-SMBGhost-Pre-Authentication-Remote-Code-Execution-Proof-Of-Concept.html"
      },
      {
        "source": "af854a3a-2127-422b-91ae-364da2661108",
        "tags": [
          "Patch",
          "Vendor Advisory"
        ],
        "url": "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0796"
      },
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "tags": [
          "US Government Resource"
        ],
        "url": "https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0796"
      }
    ],
    "sourceIdentifier": "secure@microsoft.com",
    "vulnStatus": "Analyzed",
    "weaknesses": [
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "nvd@nist.gov",
        "type": "Primary"
      },
      {
        "description": [
          {
            "lang": "en",
            "value": "CWE-119"
          }
        ],
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "type": "Secondary"
      }
    ]
  }
}

Text

A remote code execution vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handles certain requests, aka 'Windows SMBv3 Client/Server Remote Code Execution Vulnerability'. Existe una vulnerabilidad de ejecución de código remota en la manera en que el protocolo Microsoft Server Message Block (SMBv3) versión 3.1.1, maneja determinadas peticiones, también se conoce como ''Windows SMBv3 Client/Server Remote Code Execution Vulnerability".